CVE-2025-40056

Source
https://cve.org/CVERecord?id=CVE-2025-40056
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40056.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-40056
Downstream
Related
Published
2025-10-28T11:48:30.249Z
Modified
2026-03-12T03:54:31.430985Z
Summary
vhost: vringh: Fix copy_to_iter return value check
Details

In the Linux kernel, the following vulnerability has been resolved:

vhost: vringh: Fix copytoiter return value check

The return value of copytoiter can't be negative, check whether the copied length is equal to the requested length instead of checking for negative values.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/40xxx/CVE-2025-40056.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
309bba39c945ac8ab8083ac05cd6cfe5822968e0
Fixed
bd71e7e0a612740e4de5524880c7cd40293af5f7
Fixed
781226e11d5bdea0d69c7b5aa3cda874093c73b8
Fixed
b3a950d236e98440c07405ba597b11bce56a8050
Fixed
68aac2b335d474b938d154b9c95cbc58838cb2ce
Fixed
439263376c2c4e126cac0d07e4987568de4eaba5

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40056.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.0.0
Fixed
6.1.156
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.112
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.53
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.17.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-40056.json"